KTS7

IDPS templates

Templates and dashboards for threat hunting with Suricata IDPS/NSM and the ELK 7 stack

Kibana 7 Templates for Suricata IDPS Threat Hunting

GitHub

39 stars
7 watching
11 forks
last commit: about 2 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
stamusnetworks/kts6 Templates for Kibana 6 to visualize and analyze Suricata threat intelligence data 25
stamusnetworks/kts Customizable dashboards and visualizations for security monitoring and analysis using Suricata IDPS and the ELK stack. 33
stamusnetworks/kts5 Customizable dashboards for Suricata IDPS and ELK stack 43
pevma/suricata-logstash-templates Templates for integrating Suricata IDPS with Logstash and Kibana dashboards 80
stamusnetworks/suricata-4-analysts A comprehensive guide to Suricata features and best practices for security analysts and threat hunters. 52
sbasu7241/aws-threat-simulation-and-detection This repository documents the simulation and detection of various AWS attack scenarios using Stratus Red Team and SumoLogic for logging and analysis. 282
travisbgreen/hunting-rules Provides Suricata IDS alert rules for detecting network anomalies 153
stamusnetworks/selks An integrated security monitoring platform using Suricata and Elasticsearch to analyze network traffic and alerts 1,479
sbousseaden/slides Collection of resources and concepts for threat hunting and detection engineering. 372
stamusnetworks/suricata-analytics Provides resources and tools for analyzing Suricata data 27
stamusnetworks/scirius A web application for managing Suricata rulesets and threat hunting 635
olafhartong/threathunting A Splunk application designed to guide threat hunts by mapping investigations to the MITRE ATT&CK framework 1,138
a3sal0n/cyberthreathunting A collection of tools and resources for threat hunters to identify and respond to cyber threats. 855
jehuty4949/nsl_kdd An NSL-KDD dataset project for network intrusion detection 173
viaduct-ai/kustomize-sops A kustomize plugin for securely managing encrypted Kubernetes resources 654